Skip to main content

MfaChallengeFactor

A factor the SPA may use to satisfy the MFA challenge

Attributes (4)
AttributeTypeRequiredDescription
methodAuthenticationFactorMethodYesThe factor method
methodIdstringYesThe id of the enrolled factor (opaque to the SPA, must be echoed back in the proof for methods that don't bind another way)
kindAuthenticationFactorKindYesThe factor kind (knowledge, possession, biometric) — the SPA filters against step-up acceptableKinds/excludeKinds hints
labelstringNoOptional human-readable label (e.g. provider name for OIDC, friendly name for FIDO)